• Home
    • What is
    • Computer security
      • Windows security
      • Mac security
      • Linux security
    • Mobile security
      • Android security
      • iOS Security
    • Data security
    • SCCM
    • Reviews
      • Case studies
    • Advertise
    • Contact
      • Privacy Policy
  • Subscribe now

    Loading
  • Home
  • What is
  • Computer security
    • Windows security
    • Mac security
    • Linux security
  • Mobile security
    • Android security
    • iOS Security
  • Data security
  • SCCM
  • Reviews
    • Case studies
  • Advertise
  • Contact
    • Privacy Policy
Home » Breaking Computer security Cyber Security data security Device security Latest Cybersecurity News Windows security

Microsoft Patch Tuesday February 2022 fixes 51 vulnerabilities

John Greenwood Posted On February 9, 2022
0



Detailed breakdown of Microsoft Patch Tuesday February 2022

Microsoft Patch Tuesday February 2022 comes with fixes for 51 vulnerabilities across Windows Office, Azure Data Explorer, Teams, Visual Studio Code, Kernal and Win32K.

The Patch Tuesday has 51 defects closed, out of which 50 are considered important and one is mentioned as Moderate. All these come with 19 more flaws the company fixed in the Chromium-based Edge browser.

Detailed breakdown of Microsoft Patch Tuesday February 2022 updates

The security vulnerabilities fixed in this Microsoft Patch Tuesday February 2022 update are not actively exploited in the wild, the flaw CVE-2022-21989 with CVSS score 7.8 has been mentioned as Zero-Day. The issue is a privileged escalation bug in Windows Kernel with Microsoft warning of potential attacks.

Once this vulnerability is successfully exploited the attacker can perform other actions for further exploitation of the network. The attack can be performed from a low privilege AppContainer allowing elevated privileges and execute code or access resources at next level.

Besides that, there are several remote code execution vulnerabilities affecting,

  • Windows DNS Server – CVE-2022-21984 with a CVSS score of 8.8
  • Windows Hyper-V CVE-2022-21995 with CVSS score of 5.3
  • SharePoint Server CVE-2022-22005 with CVSS score of 8.8
  • HEVC Video Extensions CVE-2022-21844 and CVE-2022-21926 with CVSS score of 7.8

The Microsoft Patch Tuesday February 2022 security update also comes with fixes for,

  • Azure Data Explorer spoofing vulnerability – CVE-2022-23256 with CVSS score of 8.1
  • Two security bypass vulnerabilities impacting Outlook for Mac – CVE-2022-23280 with CVSS score of 5.3
  • Two DOS vulnerabilities in.NET – CVE-2022-21986 with CVSS score of 7.5
  • OneDrive for Android CVE-2022-23255 with CVSS score of 5.9
  • Teams – CVE-2022-21965 with CVSS score of 7.5

Fixing the multiple elevated privilege flaws in Print Spooler Service and one in the Win32K driver – CVE-2022-21966 with a CVSS score of 7.8, the latter has been mentioned as ‘Exploitation More Likely’ which was patched in Microsoft Patch Tuesday Jan 2022 in CVE-2022-21882.

The Patch Tuesday update came with a patch that was addressing the vulnerability from 2013, which is a signature validation issue affecting WinVerifyTrust CVE-2013-3900 with the fix coming as a opt-in feature via reg key setting, and is now supported editions of Windows released right after December 10, 2013.

The current ZLoader malware campaign that uncovered by Check Point Research in early January was found exploiting the flaw to bypass the file signature verification mechanism and drop malware that can siphon user credentials and other sensitive information.

If you need complete details on the Microsoft Patch Tuesday February 2022 vulnerabilities please visit Microsoft website.

Subscribe to our newsletter for daily alerts on cyber events, you can also follow us on Facebook, Linkedin, Instagram, Twitter and Reddit.

You can reach out to us via Twitter or Facebook, for any advertising requests.

Share the article with your friends


Detailed breakdown of Microsoft Patch Tuesday Feb 2022 updatesDetailed breakdown of Microsoft Patch Tuesday February 2022Detailed breakdown of Microsoft Patch Tuesday February 2022 updates


Author

John Greenwood

He has been working with Cybersec and Infosec market for 12+ years now. Passionate about AI, Cybersecurity, Info security, Blockchain and Machine Learning. When he is not occupied with cybersecurity, he likes to go on bike rides!

Leave A Reply

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

  • Subscribe to our newsletter

    Loading
  • Windows security

    • Top 9 Best Log Management Tools for 2025
      September 20, 2025
    • Top 4 Remote Support Tools for 2025- Best Remote Support...
      September 18, 2025
    • Top 5 Best Unified Endpoint Management (UEM) Software...
      September 12, 2025
    • Top 5 Threat Intelligence Tools For 2025
      July 25, 2025
    • Top 5 Best Microsoft Intune Alternatives to Consider...
      July 23, 2025


  • About us

    Our vision is to deliver the trending and happening cyber events to the enthusiasts.

    We believe in delivering educational and quality content for hassle-free understanding of the subject.

  • Subscribe to our newsletter

    Loading
  • Follow us

  • Advertise with us

    You can reach us via Facebook, Linkedin, or Twitter for advertising purposes.


© The Cybersecurity Times 2022. All rights reserved.
Press enter/return to begin your search